[ale] Re: Ping through Masq'ing firewall?

Robert L Harris nomad at rocky.orci.com
Sat Jan 3 19:49:06 EST 1998

> On  3 Jan, Robert L Harris wrote:
> >> Robert,
> >>
> >> If memory serves there's an option in the kernel config for ICMP
> >> Masqurade.  Since pings & traceroutes are ICMP packets, make sure this is
> >> enabled.  After that... sorry.  Dunno.
> >>
> > 
> > I found a IP Masq, but not ICMP.  Here's the section from "make menuconfig", let me know
> > if you see something wrong.
> Well, for starters, that looks like a 2.1.x kernel.  If you want to do
> IP masquerading with all the features (like ICMP packet support), you
> either need 2.0.x or 2.1.x + patches (sorry, don't know which ones) as
> the IP masquerading in 2.0.x is more featureful (if that's a word). 
> Last I heard, people were working on bringing 2.1.x up-to-date, but I
> haven't checked recently to see if that sort of thing's made it in or
> not (it may be in 2.1.77, since I didn't look when I compiled it).
> Personally, I'd stick with 2.0.33 on your gateway box if you can. 
> Switch to that, compile in support for ICMP, and see what happens....
> later,
> chris
> --
> Chris Ricker                                 gt1355b at prism.gatech.edu

Guess I'll that a try in the morning then.  Thanks.

Robert L. Harris          |   NT is secure.... 
System Engineer For Hire. \_   as long as you don't remove the shrink wrap.


      These are MY OPINIONS ALONE.  I speak for no-one else.
perl -e 'print $i=pack(c5,(41*2),sqrt(7056),(unpack(c,H)-2),oct(115),10);'

More information about the Ale mailing list